abstract class BaseController {

    def auth = {
        if(!session.access){
            flash.message = "You have to log in to get access!"
            redirect(controller:'access', action:'login')
            return false
        }
    }
    def highestAuth = {
        this.auth()
        if(!session.access.hasDevAuth()){
            flash.message = "Not Authorized!"
            redirect(controller:'area', action:'list')
            return false
        }
    }
}
